{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:9e9a64be-e2c7-53f3-a125-58cb9cbd5ffa",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2",
      "type": "library",
      "group": "io.netty",
      "name": "netty-handler",
      "version": "4.1.73.Final-tuxcare.2",
      "purl": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:ba815c08-0dda-5cbc-a9a8-79980a444a92",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:22550814-f76a-5f59-a603-fdf3bc9c6299",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a15e1f2-b40d-56bc-bfaf-cafb968aae0d",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62644c7e-034f-5eb1-8024-d0a5c5e68e1e",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32b295d6-f919-5309-9a7b-d7f763a69761",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f7be6ad-bd3c-5e93-b00b-3c98df3b6586",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-handler 4.1.73.Final-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:427bfbd0-6aa3-5383-9050-ac6f1c0f2393",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ce1dd1d-bd59-5d89-9433-9ea82f036804",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95fde8be-3ed6-5ead-b518-90540c25239e",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fae856ec-c679-5754-b6a8-c6071c448eaa",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6d964f2-3e27-5c53-8199-383f1f28227f",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32ea3eb5-e0b2-59a1-8dd7-fa9801de8cad",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf6ad293-b9fa-5740-a865-462a039d106f",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:161eb51f-21dd-5e1e-889e-e965af9ffb88",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a70d995-dba4-5674-8b91-669452757c07",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86f85189-a306-5f33-8b26-5d99845d44d6",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c8ba060-6c54-5ed7-8868-d8bf42261392",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c7ff214-4fd0-5a39-8b6f-d4609658c3e5",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f0da6fd-09f5-5ac2-8a4a-aff2a4c73ea1",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b594fd5a-58a1-562d-9df9-99fa9b1161c3",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bda5fa1-5e94-5721-aef2-7f3e27ff7580",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c143eed-f19d-5f17-ac52-87363af24cde",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:328b7fab-cdb7-54bd-9b70-00a8106194ce",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e3bacbe-625a-5845-a808-a2779168795e",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5bd9b0a-197d-5b66-8300-ef8e40e62e4a",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8defc7d-7ba9-517e-89c0-d60b4482b2ea",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5900842c-ba68-548b-9460-37a4f8a3233c",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cdf8892-afec-5bf7-bf0c-1af7cd053896",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e97cae6f-0ea3-5f7c-8f80-69a933b5366c",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14c1448b-2006-5ca6-83b4-84ab940962d4",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b629981-276a-5acd-8d17-eb34807f1892",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34c464d0-98af-521e-bb8d-3289c7a8fffe",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e6a10fd-e151-572f-987f-c4c20f0ac669",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d0f1658-9d12-53ad-b2dd-d90e231141cd",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6783a4c5-7465-5ad9-bdc2-a17ecbbadd53",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23706a10-ac45-5be1-9f2f-c26951db5786",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e75ac4f3-ec84-5e95-9c7e-93f39c0e1909",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6dd856af-76ed-538c-8676-9c66f0794fc2",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0aae79b7-a58e-5172-9afb-e2cd5457089b",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88553f16-b4a3-5284-8412-abf9f9a912af",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4c4d93f-2fe5-568c-8781-bb7864c137d4",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:547f7f7d-71db-5329-9d9b-b07e3c47be9b",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2cce4fc1-0179-5e2a-9e66-8f17170b9ff8",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler. not_affected \u2014 Version 4.1.73 is not affected by CVE-2026-48043. The target uses a loop-based architecture with try-finally protection (introduced in 2016) that prevents the buffer leak described in the CVE. The vulnerable ChannelInboundHandlerAdapter pattern that the upstream patch fixes does not exist in this version."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cb85d1e-a454-577e-996e-abcebb2e6b01",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e3a5550-6e00-5db8-8598-4b41822b88c7",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a2a3079-0932-5160-a93a-20b78a232016",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66fb061c-682a-5f8b-b827-261677bafa98",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9db7b927-95ed-5a2d-9fd3-ac3e285c4c89",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebfd26fd-1cb9-53b2-a67b-033fd35c80dd",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21fb14cc-9ef7-5f5c-b19f-6ddb10698e02",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0131e18-fd80-5ea2-b4ca-f701a663c076",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43d3051f-0b2b-51fe-bcc3-7ade6f96b527",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42d1f825-920d-5e3c-98ff-cc176cc1e76e",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15a81518-23df-59de-bd39-724ff75a5a8a",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90a48e2d-52e2-5fa0-b3c0-7b8ae755ca94",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f6479e0-6be8-55f8-b7d1-b811c57b734e",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2206bf0-948d-516d-92d1-edf3d1e4aa07",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0437269c-6425-5152-b905-ee5ca1e503c8",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa115483-ac81-5c17-b61a-ab97def6fd7d",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2bfcab7f-ecb7-5d85-8ec8-ca6233ca4832",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:50b36239-bc8c-5e23-812c-c1c985e5e289",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9371314e-c5d3-52e1-aaca-9775d5f45c9a",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae25eed9-e3f7-5f60-bc92-8119bd0089a8",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f02da58-cbc8-5833-a074-d8de8988d815",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.73.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-handler@4.1.73.Final-tuxcare.2"
    }
  ]
}